carbonetes / diggity-actionLinks
A Github Action that utilizes Diggity to generate software bill-of-materials (SBOM).
☆14Updated 2 years ago
Alternatives and similar repositories for diggity-action
Users that are interested in diggity-action are comparing it to the libraries listed below
Sorting:
- ☆18Updated 5 months ago
- Generates SBOMs for container images, filesystems, archives, and more to Discover packages and libraries Highly scalable data pipelines f…☆109Updated 5 months ago
- BrainIAC uses static code analysis to analyze IAC code to detect security issues before deployment. This tool can scan for issues like se…☆71Updated last year
- ORBIT: Open Resources for Baselines, Interoperability, and Tooling☆20Updated 2 months ago
- A standard API specification for exchanging supply chain artifacts and intelligence☆95Updated last month
- CaPyCLI - Python scripts for software license compliance automation with SW360☆21Updated this week
- Takes a software bill of materials and outputs provenance, and activity data from trustypkg.dev☆11Updated 6 months ago
- OPA/Rego policies for use with Conforma☆18Updated last week
- A tool that takes two or more micro SBOMs and composes them into one distributable SBOM☆23Updated 2 years ago
- Friends of in-toto! A place to record integrations and adoptions of the in-toto specification.☆19Updated last week
- ☆11Updated 4 months ago
- in-toto Enhancements☆18Updated 10 months ago
- Archivista is a graph and storage service for in-toto attestations. Archivista enables the discovery and retrieval of attestations for so…☆103Updated last week
- Website for OmniBOR, reproducible identifiers & fine-grained build dependency tracking for software artifacts.☆21Updated 10 months ago
- Security Maturity Assessment☆13Updated 9 months ago
- ☆55Updated this week
- (D)ocker(F)ile (C)onverter: CLI to convert Dockerfiles to use Chainguard Images and APKs in FROM and RUN lines etc.☆95Updated 2 months ago
- ☆41Updated this week
- Example apps demonstrating Chainguard platform integrations☆13Updated this week
- Superseded by https://github.com/guacsec/trustify☆53Updated this week
- Signature Transparency Log designed for ease of use, low cost, and minimal maintenance☆20Updated last week
- Improve Software Bill of Materials (SBOM) tooling and training to encourage adoption☆111Updated 2 weeks ago
- Python library to enable scriptable control of a FOSSology server☆11Updated 2 years ago
- A lightweight TicTacToe game with java☆10Updated 2 years ago
- Reference GitHub Workflows for SBOM generation from the CISA SBOM Generation Reference Implementation Tiger Team☆33Updated last week
- Hybrid application service creates and manages applications and controls the lifecycle of applications☆22Updated last week
- The community area and documents about Code of Conduct.☆18Updated 4 years ago
- LicenseDb is an open-source project designed to simplify license and obligation management for tools such as FOSSology and SW360. Its goa…☆14Updated last week
- Visualizer for GUAC☆29Updated this week
- ☆10Updated 2 years ago